Question 6 of 31Refer to the exhibits. Three events are collected over a 10-minute time period from two servers: Server A and Server B. Based on the settings for the rule subpattern, how many incidents will the servers generate?
Correct Answer: B
Question 7 of 31An administrator is using SNMP and WMI credentials to discover a Windows device. How will the WMI method handle this?
Correct Answer: D
Question 8 of 31An administrator is in the process of renewing a FortiSIEM license. Which two commands will provide the system ID? (Choose two.)
Correct Answer: A, C
Question 9 of 31If a performance rule is triggered repeatedly due to high CPU use, what occurs in the incident table?
Correct Answer: C
Question 10 of 31Refer to the exhibit. The FortiSIEM administrator is examining events for two devices to investigate an issue. However, the administrator is not getting any results from their search, Based on the selected filters shown in the exhibit, why is the search returning no results?